Problems are coming: the trojan source code has leaked

Κάποιος διέρρευσε τον πηγαίο ενός τραπεζικού Android trojan που ανακαλύφθηκε πρόσφατα. Ερευνητές ασφάλειας έχουν καταλήξει στο συμπέρασμα ότι το πρόσφατο κύμα επιθέσεων των τραπεζικών Android trojans έχουν κάτι κοινό: Ο κώδικας είναι ο ίδιος. code trojan

At 2015, there was an outbreak of bankers trojans targeting Android devices. Security researchers from FireEye discovered SlemBunk, Symantec reported Bankosy, and last week, Heimdal Security unveiled Mazar BOT.

According to IBM's X-Force Team, all of these Android trojans belong to the same family that IBM monitors from 2014.

Malicious software called GM Bot appeared on Russian underground forums and was sold from 500 to 450 dollars. There are others that are less used, with the names Acecard and Slempo.

As IBM explains, the developer of this threat has decided to abandon the current version (v1) and move on to a new one, but not before selling the distribution rights of the latest version of Mazar BOT.

Ο του Mazar BOT όμως διέρρευσε όταν ο διαχειριστής ενός underground hacking forum αγόρασε τον πηγαίο κώδικα και τον πρόσφερε δωρεάν σε κάθε εγγεγραμμένο χρήστη του forum….

The source code was placed in a password protected file , and for registrants to acquire it all they had to do was ask the forum administrator for the code.

Of course, things did not go as planned and users started to share the code with each other.

And now what;

In case of leaking the source code of something dangerous , ξεσπάνε κύματα επιθέσεων από χιλιάδες μεταλλάξεις του κακόβουλου λογισμικού. Λογικό γιατί κάθε χρήστης με γνώσεις προγραμματισμού μπορεί να προσθέσει τα δικά του στοιχεία στον κώδικα και να τον εξελίξει ή να τον μεταλλάξει όπως αυτός το επιθυμεί.

Here is to mention that Mazar BOT is one of the most, if not the most dangerous, bank malicious trojan that beats Android devices.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.082 registrants.

Written by giorgos

George still wonders what he's doing here ...

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).